ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 69 - ANS-C01 discussion

Report
Export

Your security team implements a host-based firewall on all of your Amazon Elastic Compute Cloud (EC2) instances to block all outgoing traffic. Exceptions must be requested for each specific requirement. Until you request a new rule, you cannot access the instance metadata service. Which firewall rule should you request to be added to your instances to allow instance metadata access?

A.
Inbound; Protocol tcp; Source [Instance’s EIP]; Destination 169.254.169.254
Answers
A.
Inbound; Protocol tcp; Source [Instance’s EIP]; Destination 169.254.169.254
B.
Inbound; Protocol tcp; Destination 169.254.169.254; Destination port 80
Answers
B.
Inbound; Protocol tcp; Destination 169.254.169.254; Destination port 80
C.
Outbound; Protocol tcp; Destination 169.254.169.254; Destination port 80
Answers
C.
Outbound; Protocol tcp; Destination 169.254.169.254; Destination port 80
D.
Outbound; Protocol tcp; Destination 169.254.169.254; Destination port 443
Answers
D.
Outbound; Protocol tcp; Destination 169.254.169.254; Destination port 443
Suggested answer: C

Explanation:

https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/instancedata-data-retrieval.htmlTo view all categories of instance metadata from within a running instance, use the following URI.http://169.254.169.254/latest/meta-data/

asked 16/09/2024
Ishan Rathnayaka
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first